or
Sign in to turn on 1-Click ordering.
or
Amazon Prime Free Trial required. Sign up when you check out. Learn More
Kindle Edition
Read instantly on your iPad, PC or Mac, no Kindle required
Buy Price: $30.92
Rent From: $7.32
 
 
 
Sell Back Your Copy
For a $0.52 Gift Card
Trade in
More Buying Choices
Have one to sell? Sell yours here
Cisco PIX Firewalls: configure / manage / troubleshoot
 
 

Cisco PIX Firewalls: configure / manage / troubleshoot [Illustrated] [Paperback]

Charles Riley (Editor) (Author), Umer Khan (Author), Michael Sweeney (Author)
3.5 out of 5 stars  See all reviews (6 customer reviews)

List Price: $51.95
Price: $34.35 & this item ships for FREE with Super Saver Shipping. Details
You Save: $17.60 (34%)
  Special Offers Available
o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o
In Stock.
Ships from and sold by Amazon.com. Gift-wrap available.
Want it delivered Tuesday, January 31? Choose One-Day Shipping at checkout. Details
Textbook Student FREE Two-Day Shipping for Students. Learn more

Formats

Amazon Price New from Used from
Kindle Edition
Rent from
$30.92
$7.32
 
Paperback, Illustrated $34.35  

Book Description

1597490040 978-1597490047 May 1, 2005 1
Umer Khan's first book, "Cisco Security Specialist's Guide to PIX Firewalls," ISBN: 1931836639, consistently maintained its spot as the #1 best-selling PIX book on amazon.com by providing readers with a clear, comprehensive, and independent introduction to PIX Firewall configuration. With the market for PIX Firewalls maintaining double digit growth and several major enhancements to both the PIX Firewall and VPN Client product lines, this book will have enormous appeal with the audience already familiar with his first book.

* The Cisco Pix firewall is the #1 market leading firewall, owning 43% market share. Cisco released completely re-designed version 7 of the Pix operating system in the first quarter of 2004.

* "Cisco Pix Firewalls: configure | manage | troubleshoot" covers all objectives on the new Cisco Pix certification exam, making this book the perfect study guide in addition to professional reference.

Special Offers and Product Promotions

  • Buy $50 in qualifying physical textbooks, get $5 in Amazon MP3 Credit. Here's how (restrictions apply)

Frequently Bought Together

Customers buy this book with CCSP Self-Study: Cisco Secure PIX Firewall Advanced (CSPFA) (2nd Edition) $34.21

Cisco PIX Firewalls: configure / manage / troubleshoot + CCSP Self-Study: Cisco Secure PIX Firewall Advanced (CSPFA) (2nd Edition)


Editorial Reviews

About the Author

Umer Khan [co-author and technical reviewer] is the Senior Director of IT Infrastructure at Broadcom Corporation, the world's largest fabless semiconductor company. Umer and his team have responsibility for the research, design, implementation, and support of Broadcom's global IT infrastructure, including the compute farm, network, telecommunications, Windows and UNIX servers/services, engineering tools/licensing, storage, messaging, desktop/laptop, thin client, and mobile technologies. Umer has served as an author, editor, and reviewer for several technical publications related to networking, security, and UNIX, and his "Cisco Security Specialist's Guide to PIX Firewalls" book became a best-seller in the industry. Umer has a strong passion for technology and its applications. He holds numerous IT certifications (including the CCIE) and has three US patents pending related to networking technologies. Umer received his Bachelor's degree in Computer Engineering from the Illinois Institute of Technology, and his MBA from the Wharton School of the University of Pennsylvania.

Technical editor and co-author Charles Riley (CCNP, CSS1, CISSP, CCSA, MCSE, CNE-3) is a Network Engineer with a long tenure in the networking security field. Charles has co-authored several books including Syngress Publishing's Configuring Cisco Voice Over IP, Second Edition (ISBN: 1-931836-64-7). He has designed and implemented robust networking solutions for large Fortune 500 and privately held companies. He started with the U.S. Army at Fort Huachuca, AZ, eventually finishing his Army stretch as the Network Manager of the Seventh Army Training Command in Grafenwoehr, Germany. Currently Charles is employed as a Network Security Engineer for Hypervine in Kansas, where he audits and hardens the existing security of customers, as well as deploying new security architectures and solutions. Charles holds a bachelor's degree from the University of Central Florida.

Product Details

  • Paperback: 544 pages
  • Publisher: Syngress; 1 edition (May 1, 2005)
  • Language: English
  • ISBN-10: 1597490040
  • ISBN-13: 978-1597490047
  • Product Dimensions: 9.1 x 7 x 1.3 inches
  • Shipping Weight: 1.8 pounds (View shipping rates and policies)
  • Average Customer Review: 3.5 out of 5 stars  See all reviews (6 customer reviews)
  • Amazon Best Sellers Rank: #1,140,788 in Books (See Top 100 in Books)

More About the Author

Umer Khan is the Senior Director of IT Infrastructure at Broadcom Corporation, where he leads the organization responsible for the research, design, implementation, and support of Broadcom's global IT infrastructure.

Umer has served as an author, editor, and reviewer for several technical publications related to networking, security, and UNIX, and his "Cisco Security Specialist's Guide to PIX Firewalls" book became a best-seller in the industry. He also holds numerous IT certifications (including the CCIE) and has three US patents pending related to networking technologies.

Umer received his Bachelor's degree in Computer Engineering from the Illinois Institute of Technology and his MBA from the Wharton School of the University of Pennsylvania.

Umer is passionate about family and loves spending time with his wife and three children.

 

Customer Reviews

6 Reviews
5 star:
 (3)
4 star:    (0)
3 star:
 (1)
2 star:
 (1)
1 star:
 (1)
 
 
 
 
 
Average Customer Review
3.5 out of 5 stars (6 customer reviews)
 
 
 
 
Share your thoughts with other customers:
Most Helpful Customer Reviews

9 of 9 people found the following review helpful:
3.0 out of 5 stars Poor production quality, but some useful info., November 27, 2005
This review is from: Cisco PIX Firewalls: configure / manage / troubleshoot (Paperback)
Anyone who has ever deployed a network and talked to a Cisco sales representative is probably familiar with the PIX device. Anyone who has ever used one knows that there are hundreds of commands and combinations available to them, and it's easy to get lost. A book like Cisco PIX Firewalls by Charles Riley, Umer Khan, Michael Sweeney, along with Thorsten Behrens, Brian Browne, Daniel Klingerman, and Ido Dubrawsky can help you navigate this powerful feature set.

While the Cisco PIX product, which actually refers to a device product line and its associated operating system, isn't open source, there is a full set of documentation available on the Cisco web site. You can look up commands and even many common tasks which can help you achieve your goal. So, a big question in my review of this book is "Does Cisco PIX Firewalls offer substantially more than these freely available documents?"

The book is not divided into any major sections, but follows a simple path. Provide an overview of the product, some of the basic functionality, and then move on to a task based approach of solutions. These include failover, VPN, IPv6, content inspection, and management with the newly designed ASDM product. This organization works pretty well.

A generic overview of security, security policy, and how firewalls play a role in that is covered in Chapter 1. The overview is very brief, and the authors seem to have included it for completeness only. If you're looking at a book on the PIX firewall, chances are you're familiar with what a firewall does in part. My only big complaint about this chapter is that some of the figures on NAT and PAT are confusing because they use RFC1918 address space (private address space) on both sides of the device. When they talk about how this is used internally and then use it externally, it gets confusing to remember which network is which. Sadly, this network structure continues into other chapters, perpetuating the confusion.

In chapter 2 you get an overview of the PIX software and hardware lines. Sadly, this chapter is a bit muddled. While the overview itself covers all the right bases, at times some additional material would have been helpful. Supplementing text descriptions with a simple picture would be nice, so that people could know at a glace which device they're looking at (ie a PIX 506E vs a 525). A software and hardware matrix would have been helpful, too, to reduce the confusion you get with Cisco's myriad of configurations. In several places, the one letter abbreviations from the output is not explained, including the firewall states and routing output. And finally, this appears to be common in this book, there's an inconsistency in bolding which text is input and which is output. The "bold is input, normal is output" convention is not always obeyed. These may sound like nits, but consistency helps with clarity, and at times the material is muddled.

Overall, there are some real strengths in the book, and a few weaknesses as well. One example of a real gem is the case study in chapter 3, showing a featured network and the associated PIX configuration. This lets you see how you would outline your goals and then achieve them using the PIX feature set and commands. This example was well written and useful. The breakdown of commands as new, existing, or deprecated is also quite useful given that the book covers a major new release, 7.0. The coverage of the new ASDM feature, which provides a GUI management interface to the PIX software, is pretty good. With that chapter, and chapter 9 covering management, you should be up and running in no time at all. The same goes for the new content inspection feature, covered in chapter 5. While it's brief, it contains a lot of useful information that you'll need to enable features. What's missing from that, though, is any serious overview of the problems the prior version of the feature, the 'fixup' command, caused in the past and if the new inspection feature suffers those same problems. Finally, the chapters on virtual private networking and failover are succinct but enough to get you started with a basic running configuration.

Sometimes there are real stinkers, though. Some of the formatting makes getting information out of the output difficult. Word wrap and oddities really detract from the quality of the material in those places. Many of the figures can be unclear due to the quantity of information they try and present. Here, two figures may have been useful instead of one fully packed figure. The book has a few errors in it, too, which may have been the result of a speedy printing cycle. Figure 2.3, for example, shows an incorrect TCP header. I suspect many of the errors, inconsistencies and other problems in it are due to two reasons. First, the publisher wanted to get this book out quickly to match the release of PIX 7.0 as closely as possible. Secondly, the number of contributing authors (6 authors and a technical editor) made a cohesive writing style and their edits difficult to choreograph completely.

Overall, Cisco PIX Firewalls has some value to it, covering new PIX 7.0 features clearly and skillfully. Unfortunately, it suffers from some production problems and errors which weaken it's strength and rating. Syngress also has four eBooks available with this book, one of which covers PIX migrations with earlier versions. While this wont replace the official Cisco documentation, it augments it nicely and, for some of the features covered, surpasses the Cisco documentation. If you're looking at deploying a Cisco PIX soon or upgrading from 6.x to 7.0, you should pick up this book.
Help other customers find the most helpful reviews 
Was this review helpful to you? Yes No


5 of 5 people found the following review helpful:
1.0 out of 5 stars Tons of mistakes, January 22, 2006
By 
This review is from: Cisco PIX Firewalls: configure / manage / troubleshoot (Paperback)
This book is full of errors and mistakes. Most of these occur in the examples of commands. For example, at the bottom of page 131 the author explains how to use the "static" command to create a NAT mapping between an internal server and a server on the DMZ. Here is what it says....

The following configuration translates the real IP address of the internal database server (192.168.1.10) to an address accessible by the DMZ Web server (172.16.1.10):

PIX1(config)# static (inside, dmz) 10.1.1.10 172.168.1.10 netmask 255.255.255.255 0 0

What??? Look at the IP's used in the command. Completely different than what the author just described. These are the kind of mistakes this book is full of. I can overlook one or two, but I'm about 25% through the book and have encountered about 8 of these.
Help other customers find the most helpful reviews 
Was this review helpful to you? Yes No


7 of 10 people found the following review helpful:
5.0 out of 5 stars Syngress - Cisco PIX Firewalls, August 15, 2005
By 
K. Dzoic (Zagreb,Croatia) - See all my reviews
(REAL NAME)   
This review is from: Cisco PIX Firewalls: configure / manage / troubleshoot (Paperback)
This book explains PIX 5xx models with IOS version 7.0
I purchuase PIX 501, then I find on web: The PIX 501, PIX 506E, and PIX 520 security appliances are not supported in software Version 7.0, but when you register this book at Syngress you can download Complete E-Book for PIX Software 6.x

This is my first contact with PIX, and this book helped me to manage firewall quite nice.
Help other customers find the most helpful reviews 
Was this review helpful to you? Yes No

Share your thoughts with other customers: Create your own review
 
 
 
Most Recent Customer Reviews




Only search this product's reviews



Inside This Book (learn more)
Key Phrases - Statistically Improbable Phrases (SIPs): (learn more)
failover group, standby firewall, failover command, xlate command, explorer pane displays, rip dmz passive, nat control, virtual telnet, failover interface, using preshared keys, secondary firewall, failover concepts, isakmp policy, crypto map, primary firewall, failover cable, allowing inbound traffic, console authentication, crypto key generate rsa, dhcpd dns, failover key, failover link, filtering server, poll frequency, clear xlate
Key Phrases - Capitalized Phrases (CAPs): (learn more)
Old Syslog Message, Deletion Reason, Frequently Asked Questions, Configuration Screen, Cancel Help, Startup Wizard, Solutions Fast Track, Cisco Secure, Secure Shell, Gigabit Ethernet, Normal Interface, Standby Active, Ask the Author, Change Reason, Security Wheel, Fast Ethernet, New Syslog Message, Secure Corporation, Active Directory, Microsoft Windows, Cisco Firewall Specialist, Cisco Systems, Active Active, Adaptive Security Algorithm, Cisco's Web
New!
Books on Related Topics | Concordance | Text Stats
Browse Sample Pages:
Front Cover | Table of Contents | First Pages | Index | Surprise Me!
Search Inside This Book:



What Other Items Do Customers Buy After Viewing This Item?


Tags Customers Associate with This Product

 (What's this?)
Click on a tag to find related items, discussions, and people.
 

Your tags: Add your first tag
 

Customer Discussions

This product's forum
Discussion Replies Latest Post
No discussions yet

Ask questions, Share opinions, Gain insight
Start a new discussion
Topic:
First post:
Prompts for sign-in
 


Active discussions in related forums
Search Customer Discussions
Search all Amazon discussions
   
Related forums



So You'd Like to...



Look for Similar Items by Category


Look for Similar Items by Subject